Commit Graph

980 Commits

Author SHA1 Message Date
Aminda Suomalainen 1e22108950
unbound/00-insecure-domains.conf: qname minimization is not relevant here 2024-04-19 09:17:01 +03:00
Aminda Suomalainen 1a1bf9adb9
unbound/conf.d: add vim modelines/filetypes 2024-04-19 09:14:32 +03:00
Aminda Suomalainen b3eb6e06e7
unbound: add symlink for the Fedora name as I keep tab failing 2024-04-19 09:09:36 +03:00
Aminda Suomalainen 47e51ee38b
firefox policy: use Quad9 ECS as TRR 2024-04-19 08:48:57 +03:00
Aminda Suomalainen 39f2eb4f0f
chromium: add doh-cloudflare-secure.json, ECH notes 2024-04-19 08:24:29 +03:00
Aminda Suomalainen b248392e8a
systemd-resolved: think more on local resolvers or not 2024-04-18 14:31:56 +03:00
Aminda Suomalainen 4c4508ba36
unbound/dot-*quad9.conf: add DNS10 & DNS12 (commented), remove extra spaces 2024-04-18 11:16:20 +03:00
Aminda Suomalainen 9aa71de638
systemd-resolved/dot-quad9.conf: add commented DNS10 & DNS12 2024-04-18 11:08:23 +03:00
Aminda Suomalainen 5097076daf
unbound: also disable qname-minimization for DNSo53 forwarders 2024-04-17 16:03:23 +03:00
Aminda Suomalainen 363be56010
unbound: move to tls-ystem-cert from tls-cert-bundle & disable qname minimization for DoT forward-zones 2024-04-17 16:01:38 +03:00
Aminda Suomalainen bbab2f335d
resolv.tsv: sort 2024-04-17 15:42:34 +03:00
Aminda Suomalainen 9ba083f81f
resolv.tsv: add Quad9 unfiltered variants 2024-04-17 15:42:08 +03:00
Aminda Suomalainen c18fe92ad8
etc/resolv.tsv: add Quad9 Apple Mobileconfigs 2024-04-17 15:34:43 +03:00
Aminda Suomalainen f10b151a3b
systemd: add firewalld.service.d/never-fail.conf due to failing to timeout on sedric 2024-04-17 11:38:43 +03:00
Aminda Suomalainen 75c39ddb0d
sudoers.d/nordvpnd: include nordvpnd.socket 2024-04-16 08:39:16 +03:00
Aminda Suomalainen 419805bc91
chromium/README: add forgotten files, fix description for those moved from recommended 2024-04-16 07:15:30 +03:00
Aminda Suomalainen a0456269a1
chromium: move brave feature disabling from recommended to managed for actual effect 2024-04-16 07:11:55 +03:00
Aminda Suomalainen 36f433f35b
chromium/managed: add enable-labs.json
I have decided that I want it anyway and unlike before, now it has its own file so I can decide to leave it alone on shared devices
2024-04-15 21:08:56 +03:00
Aminda Suomalainen 8c748dd2d6
unbound/dot-dns0-quad9.conf: fix duplicate forward zone 2024-04-14 14:23:58 +03:00
Aminda Suomalainen ac922aea86
{firefox,chromium}: add Floccus bookmarks sync so I will remember its existence 2024-04-14 14:10:39 +03:00
Aminda Suomalainen cd2ae2c852
etc/resolv.tsv: add Google DNS & DNS64 as they too are Android hard-coded for DoH3 2024-04-14 09:18:05 +03:00
Aminda Suomalainen cc25967b22
etc/resolv.tsv: note Cloudflare being DoH3 on Android, add Cloudflare antimalware/family DoT addresses 2024-04-14 09:10:06 +03:00
Aminda Suomalainen 44c3168a39
chromium policy: strip DnsOverHttpsMode to two different files, rename automatic to allowed for clarity & update README.md on these 2024-04-13 18:38:26 +03:00
Aminda Suomalainen 46ac8aefd8
unbound: add dot-dns0-quad9.conf 2024-04-12 17:01:32 +03:00
Aminda Suomalainen ab74e45a9f
chromium policy/brave-shields-disabled.json: add glowing-bear 2024-04-12 14:29:49 +03:00
Aminda Suomalainen b9d8da4df4
chromium policy. add brave-shields-disabled.json based on Privacy Badger 2024-04-12 14:26:31 +03:00
Aminda Suomalainen bf1fdc4cff
{firefox,chromium} policy: PB exclude Disroot Mvim, Microsoft {Teams,Learn} 2024-04-12 14:24:31 +03:00
Aminda Suomalainen b1a0125674
unbound: add local-tlds.conf 2024-04-12 14:16:10 +03:00
Aminda Suomalainen 0d4c40ba16
systemd: mark systemd-resolved.conf to be conflicting with avahi-daemon 2024-04-12 10:58:15 +03:00
Aminda Suomalainen 73865c747d
root-auto-trust-anchor-file.conf -> debian-root-auto-trust-anchor-file.conf
Let's not overwrite files accidentally
2024-04-12 10:56:51 +03:00
Aminda Suomalainen 0bac3a8ab0
chromium: add doh-quad9.json 2024-04-12 10:42:51 +03:00
Aminda Suomalainen e88c2a8067
etc: attempt to enable mDNS/LLMNR for systemd-{networkd,resolved} & NetworkManager
Some boolean fixing slipped in as well
2024-04-12 09:52:32 +03:00
Aminda Suomalainen 4d4dc026fd
unbound: ipv6.conf -> prefer-ipv6.conf
more descriptive name
2024-04-12 09:19:02 +03:00
Aminda Suomalainen a7bb2f5ec8
etc/iwd/main.conf: update comments on DNS 2024-04-11 10:16:21 +03:00
Aminda Suomalainen 80ac65acd1
systemd-resolved/README.md: enable doctoc 2024-04-11 10:06:18 +03:00
Aminda Suomalainen cce932960e
systemd-resolved/README.md: mention nordvpn.conf 2024-04-11 10:05:18 +03:00
Aminda Suomalainen a2e36f2a3b
systemd-resolved/README.md: remove EOL Ubuntu, fix booleans, note my actual DNS config 2024-04-11 10:03:53 +03:00
Aminda Suomalainen da6eab8dfc
systemd-resolved: use true/false as booleans (not yes/no) & remove repeated localhost 2024-04-11 10:02:49 +03:00
Aminda Suomalainen 3009af55a6
resolved.conf.d/README.md: mention 00-defaults and dot-something being supposed to be used together 2024-04-10 15:09:31 +03:00
Aminda Suomalainen 9a210c4bba
systemd-resolved: further decrease repeating, comment DNS-Over-TLS since it's in 00-defaults.conf already (+ local resolver) 2024-04-10 15:06:14 +03:00
Aminda Suomalainen f12d0ceb8a
systemd-resolved: don't repeat cache 2024-04-10 15:02:30 +03:00
Aminda Suomalainen 241405c776
systemd-resolved: merge unbound.conf into 00-defaults.conf 2024-04-10 11:59:36 +03:00
Aminda Suomalainen f885dcd73a
chromium/recommended: disable Tor in Brave 2024-04-10 11:21:52 +03:00
Aminda Suomalainen 4cfd7ab75f
chromium: add recommendation of disabling Brave rewards & wallet 2024-04-10 11:18:42 +03:00
Aminda Suomalainen 2282429f94
brave: use boolean for disabling vpn 2024-04-10 11:16:55 +03:00
Aminda Suomalainen 149cadfa41
firefox & chromium: add IPFS Companion 2024-04-10 11:03:19 +03:00
Aminda Suomalainen d7879eeb6b
chromium: update README with the two new files 2024-04-10 10:53:37 +03:00
Aminda Suomalainen 450aac4c32
chromium: add disable-brave-vpn.json 2024-04-10 10:51:38 +03:00
Aminda Suomalainen 35e1faaabc
chromium: add doh-quad9-ecs.json 2024-04-10 10:51:15 +03:00
Aminda Suomalainen 4a08068634
unbound/cache: serve-expired: yes
I am unsure on whether this actually affects anything without setting the other expired options too
2024-04-07 19:44:10 +03:00